vulnerability

SUSE: CVE-2022-46705: SUSE Linux Security Advisory

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Feb 27, 2023
Added
Nov 27, 2023
Modified
Jan 28, 2025

Description

A spoofing issue existed in the handling of URLs. This issue was addressed with improved input validation. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, Safari 16.2. Visiting a malicious website may lead to address bar spoofing.

Solution(s)

suse-upgrade-libjavascriptcoregtk-4_0-18suse-upgrade-libjavascriptcoregtk-4_0-18-32bitsuse-upgrade-libjavascriptcoregtk-4_0-18-64bitsuse-upgrade-libjavascriptcoregtk-4_1-0suse-upgrade-libjavascriptcoregtk-4_1-0-32bitsuse-upgrade-libjavascriptcoregtk-4_1-0-64bitsuse-upgrade-libjavascriptcoregtk-6_0-1suse-upgrade-libwebkit2gtk-4_0-37suse-upgrade-libwebkit2gtk-4_0-37-32bitsuse-upgrade-libwebkit2gtk-4_0-37-64bitsuse-upgrade-libwebkit2gtk-4_1-0suse-upgrade-libwebkit2gtk-4_1-0-32bitsuse-upgrade-libwebkit2gtk-4_1-0-64bitsuse-upgrade-libwebkit2gtk3-langsuse-upgrade-libwebkitgtk-6_0-4suse-upgrade-typelib-1_0-javascriptcore-4_0suse-upgrade-typelib-1_0-javascriptcore-4_1suse-upgrade-typelib-1_0-javascriptcore-6_0suse-upgrade-typelib-1_0-webkit-6_0suse-upgrade-typelib-1_0-webkit2-4_0suse-upgrade-typelib-1_0-webkit2-4_1suse-upgrade-typelib-1_0-webkit2webextension-4_0suse-upgrade-typelib-1_0-webkit2webextension-4_1suse-upgrade-typelib-1_0-webkitwebprocessextension-6_0suse-upgrade-webkit-jsc-4suse-upgrade-webkit-jsc-4-1suse-upgrade-webkit-jsc-6-0suse-upgrade-webkit2gtk-4_0-injected-bundlessuse-upgrade-webkit2gtk-4_1-injected-bundlessuse-upgrade-webkit2gtk3-develsuse-upgrade-webkit2gtk3-minibrowsersuse-upgrade-webkit2gtk3-soup2-develsuse-upgrade-webkit2gtk3-soup2-minibrowsersuse-upgrade-webkit2gtk4-develsuse-upgrade-webkit2gtk4-minibrowsersuse-upgrade-webkitgtk-4-0-langsuse-upgrade-webkitgtk-4-1-langsuse-upgrade-webkitgtk-6-0-langsuse-upgrade-webkitgtk-6_0-injected-bundles
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.